zwift.com
HTML metadata
Technology
- CDN
- Amazon CloudFront
- CMS
- Next.js
- Analytics
-
- Amplitude
Third-party hosts loaded (3)
- images.prismic.io×4
- cdn.amplitude.com×2
- static.cdn.prismic.io×1
Social
Registration
- Registrar
- Amazon Registrar, Inc.
- Created
- 2004-04-19
- Expires
- 2027-03-20 305 days left
- Updated
- 2026-05-15
- Name servers
-
- ns-1140.awsdns-14.org
- ns-1720.awsdns-23.co.uk
- ns-462.awsdns-57.com
- ns-776.awsdns-33.net
DNS records live
- NS
-
- ns-1140.awsdns-14.org
- ns-1720.awsdns-23.co.uk
- ns-462.awsdns-57.com
- ns-776.awsdns-33.net
- MX
-
- 10 usb-smtp-inbound-1.mimecast.com
- 10 usb-smtp-inbound-2.mimecast.com
- TXT
-
Show 16 TXT records
google-site-verification=aJX908FoYQRcKdBh4tbIgdwP8b1q339xZjrsxrhU6E41password-site-verification=Z2QQECI72RED5BGL3RNMWBHKTYatlassian-domain-verification=f9Nc86jHK1XleQ5kHWudXfT2EyCKE4N8H9td0nXxm1ckf2qYXt2waKzMg0PTBOKastatus-page-domain-verification=0wc3k4f7p60qzapier-domain-verification-challenge=d20f7e61-bafa-4783-bbdf-b5ec83c9dcb1apple-domain-verification=szBtl0kO7V5NnmCrwrike-verification=NjI0MzIzMjpjODlmYzUyNjFmMWRhYjA5M2FlYzc5ZDk2MzI4NmEwMzc1MWMzNWFjYTU2OTM2OTU5NTBlMjJmOGE0ZDE4MDk3shopify-verification-code=wDfDEHLdLLA3JTchzXbwMdBhgCqGuP0ed1fe018ac81044a1e01141ce9372f552a902d4dcgoogle-site-verification=yNrBZeLFaMmt_eWlPVPw4c55be6KbriUtoUeUWTf_H8MS=ms16385056openai-domain-verification=dv-BWLJeHFUVzB0ZDnzZ41dxPcafavro-verification=KQroS8vaJ3NuucO6s17N65iDOuV6YPwNm3JbJd6hwnjgoogle-site-verification=-d_fw2_mN4NP_7zLu4sWF-2qjU00IY4DxOCQcAWFokYgoogle-site-verification=j230_KKMgMLw_2KhAEWr7bhdxfPeTTQPyaUUW0py1t0docker-verification=52e1db2a-17a9-40e7-a223-f0686cce6d64
Email authentication strong
- SPF
-
v=spf1 include:_spf.google.com include:shops.shopify.com include:sendgrid.net include:kbounces.zwift.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; pct=100; rua=mailto:dmarc_agg@vali.email;policy: reject (enforced) - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAi5Q7ypxqS6BzQdryqbdoOSkSpe0TquM04TaGEBN8y/mjxVPSBE1eH4q1GZZ3ozDZCNNp7FYQk0fGqU… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtNps/RSAzFudmeb8myK9JTE9phr9mbh63ry+WqhjCpQeNFv6LqpxOISNO7C9bWKaVvq5kJ/d8eILouXACj… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDSa490i0k9oEduxKCCx1+GyxCz8ECoTEHsqi75SuMkzBX/rVzU7VQA2H7T/mD5mwtOxGJcsSh7Qu4spb3Tg013qd… - smtpapi:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPtW5iwpXVPiH5FzJ7Nrl8USzuY9zqqzjE0D1r04xDN6qwziDnmgcFNNfMewVKN2D1O+2J9N14hRprzByFwfQW76…
selectors probed - google:
Certificate (current)
Amazon RSA 2048 M04
Expires in 80 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
frame-ancestors 'self' *.zwift.com- strict-transport-security
max-age=15552000; includeSubDomains